siemens / continuous-clearingLinks
The Continuous Clearing Tool scans and collects third-party open-source components used in projects based on NPM, NuGet, Debian, Maven, Python, Conan, Alpine, and Cargo. It then uploads the collected data to SW360 and FOSSology for license clearing, using the respective project ID provided.
☆30Updated last week
Alternatives and similar repositories for continuous-clearing
Users that are interested in continuous-clearing are comparing it to the libraries listed below
Sorting:
- Service to scan licenses from source code☆12Updated 2 years ago
- OSS License Open Data☆12Updated 6 years ago
- SBOM Search - Context aware search in SBOM repositories☆29Updated 2 months ago
- Utility that provides an API platform for validating, querying and managing BOM data☆126Updated 3 weeks ago
- sbomasm: The Complete SBOM Management Toolkit☆100Updated last week
- SupplyShield is an open-source application security orchestration framework designed to secure your software supply chain from vulnerabil…☆16Updated last month
- Utility that converts SBOM documents from CycloneDX to SPDX☆33Updated 2 years ago
- Validate the SPDX SBOM against NTIA, CISA, and other minimum element requirements.☆78Updated this week
- Publications done by Double Open.☆16Updated 5 years ago
- PURL to CPE Relationship mapping project.☆109Updated this week
- Low-effort reachability analysis for third-party code vulnerabilities.☆22Updated 2 years ago
- This is a mapping of CPEs to package urls created by using VulnerableCode's data☆10Updated 5 years ago
- A place to systematically store software bill of materials (SBOM) documents.☆50Updated 2 years ago
- Produce an Open Source Vulnerability JSON file based on information in an SPDX document☆65Updated last year
- Generate VEX (Vulnerability Exploitability Exchange) CycloneDX documents☆24Updated last year
- A light-weight app to audit and inventory large codebases for open source license compliance.☆72Updated this week
- Library to ingest and generate SBOMs☆36Updated this week
- A scalable server implementation of the OSS Review Toolkit.☆49Updated this week
- Parse and compare all the package versions and all the ranges. From debian, npm, pypi, ruby and more. Process all the version range specs…☆38Updated 2 months ago
- List of SBOM Generation Tools☆29Updated 10 months ago
- This tool compares two Software Bill of Materials (SBOMs) and reports the differences.☆40Updated last year
- ☆102Updated last year
- A web based tool for working with CycloneDX BOMs☆42Updated 2 months ago
- ☆121Updated 9 months ago
- Enrich SBOMs with data from third party services☆213Updated last month
- Tool for collecting vulnerability data from various sources (used to build the grype database)☆109Updated this week
- A BOM repository server for distributing CycloneDX BOMs☆85Updated 6 months ago
- OSADL license compatibility matrix as a CSV☆17Updated last year
- The SCANOSS SBOM Workbench graphical user interface to scan and audit your source code.☆59Updated last week
- Sharing software supply chain security open source projects☆53Updated 3 years ago